Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos & snort

Hello,

I was wondering if snort does some correlations ?

I mean something like : dont alert if the rule A has matched, but only alert if the rule A has matched and then the rule B has also matched.

Is Sophos able to do that or it does only match content for one packet?



This thread was automatically locked due to age.